< Back to all clusters
[TECHNOLOGY] · United States, China, South Korea · 55 sources

started · updated

U.S. authorities dismantle Chinese hacking platforms targeting NASA and Senate FAST-MOVING

U.S. authorities, including the Department of Justice and the FBI, have dismantled a major Chinese state-sponsored cyber-espionage operation. The operation targeted highly sensitive federal agencies and critical infrastructure, including NASA, the Federal Reserve, the U.S. Senate, the Department of Energy, and the Department of Health and Human Services.

Federal investigators identified two primary hacking platforms, QScan and QTRouter, operated by a group known as QTFY. These platforms were linked to the China-based Nanjing Xinjiuwei Network Technology Company, which allegedly provided services to China’s Ministry of State Security and the People’s Liberation Army.

Technical analysis revealed that QScan was used to automatically scan for and infect thousands of internet-connected IoT devices worldwide. These compromised devices were then integrated into the QTRouter network, which utilized commercial proxies and virtual private servers to obfuscate the origin of the attacks, making them appear to originate from outside China or even from within the targeted networks. The malicious infrastructure has reportedly been active since at least 2018.

Entities

China · Department of Justice · Federal Bureau of Investigation · Federal Reserve · NASA · Nanjing Xinjiuwei Network Technology Company · People's Liberation Army · QTFY · U.S. Department of Justice · United States Department of Justice · United States government

Claims

What the coverage asserts, and how many sources carry each claim.

Sources

about 4 hours ago
about 1 hour ago
about 2 hours ago
about 8 hours ago
about 8 hours ago